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Abstract 

o 

^SJ ■ CZF is a system of set theory which, over classical logic, is equivalent to ZF, while 

over intuitionistic logic, it has a well-known constructive type-theoretic interpretation. This 
article introduces a simpler, intuitive family of constructive interpretations: sets are well- 
founded extensional computable conditional enumerations of sets. One interpretation in 
this family is just this: all sets are inductively built from by iterating the construction 
{/n | n £ N A g„ — h n }, where, in turn, g and h are computable sequences of sets, and 
/ is a computable sequence such that /„ is a set when g n and h n are extensionally equal. 
Extended Church's Thesis, an assumption which is incompatible with classical logic, is 
required to make this a model of CZF. Besides its foundational interest, it yields direct 
conservativity proofs for certain choice principles, the Subcountability axiom, and for some 
so-called Omniscience principles, including first-order arithmetic Omniscience. A larger 

S— interpretation in this family also models the Regular Extension Axiom. 
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en 
> ■ 1 Introduction 

O 

Set theory studies more or less arbitrary collections that are well-founded and extensional. It 
I , provides a simple, unifying framework for all mathematics; for ordinary classical mathematics, 

• ■ the formal system of Zermelo-Fraenkel set theory with Choice (ZFC), suffices. From the point 

of view of constructive and predicative mathematics, ZFC is not suitable, but can be made so 
with remarkably little change. To this end, constructive Zermelo-Fraenkel set theory (CZF) was 
introduced by Aczel. Over classical logic, CZF has the same theorems as Zermelo-Fraenkel set 
theory without Choice (ZF), and in fact its axiomatisation is not far from the way ZF is usually 
axiomatised. 

To briefly describe the differences between ZF to CZF: most importantly of course CZF 
uses intuitionistic logic, so the principle of the Excluded Middle (EM) is absent. Extensionality, 
Pairing, Union, and Infinity are left as is. Replacement, Foundation, and Power Set in ZF 
become Strong Collection, Bounded Separation, Set Induction, and Subset Collection in CZF 

[1, §2] 

These substitutions are of no effect classically. Constructively, unacceptable principles are 
weakened. Foundation can be made acceptable by a contraposition: no inhabited set intersects 
all of its elements. Power Set can be made acceptable by switching to Exponentiation: given 
two sets, there is a set of all functions from one set to the other. This is weaker since construc- 
tively there is no "set of all truth values" to exponentiate. But these can then acceptably be 



strengthened. Constructive Foundation becomes Set Induction; the latter does not follow from 
the former constructively. Exponentiation becomes Subset Collection. Replacement can also be 
strengthened to Strong Collection and Bounded Separation. Separation does not follow from 
Replacement constructively. 

The infamous axiom of Choice is dropped entirely in CZF, but the principle of Dependent 
Choices is widely used even in constructive and predicative mathematics, and is often taken as an 
additional axiom on top of CZF. Two strengthenings of it are used as well. One is Relativised 
Dependent Choices (RDC) [1, §8.2], extending over classes instead of just sets. Classically this 
is redundant, being just a consequence of DC. Another is the Presentation principle [1, §8.3], 
which asserts that every set is the image of a so-called base. This is also known as the existence 
of Enough Projectives (EP) in the category of sets. Not much is known about EP classically. 
It is a consequence of full Choice, it implies DC, and the latter implication cannot be reversed; 
Rathjcn remarks, however, that it is an open problem whether EP implies full Choice [14, §5]. 

It is not claimed that the axioms of CZF are self-evidently constructively or predicatively 
acceptable. (It is not self-evident that they are classically acceptable, for that matter.) Rather, 
as shown by Aczel, they have an interpretation in Martin-Lof's type-theoretic framework [2], 
which also provides an interpretation for RDC and EP [3]. Martin-Lof's framework is a logic- 
free system of constructions that can be given a strong justification on its own [11]; alternately, 
a computational interpretation of sets can be obtained essentially by composition of the inter- 
pretation of sets in terms of types with a computational interpretation of types [4, §XII]. 

This article introduces a simplified and more intuitive approach to the computational inter- 
pretation of sets, and also explicitly states the numerical principles on which the interpretation 
depends. The general definition of a set is just this: 

Definition 1.1 Sets are well-founded extensional computable conditional enumerations of sets. 
Specifically: 

• If p is a computable sequence of Meaningful conditions, and f is a computable sequence 
such that f n is a set if p„ is True, then {/„ | nGN A (p n is True)} is a set. 

• All sets are built inductively in this way. 

• Extensional equality between sets has the expected recursive definition. 

This definition is more specific than the classical concept, but by itself it is still too vague to be 
constructively useful, as it makes reference to Meaning and Truth. Fortunately, no insight into 
these great open problems of philosophy will be required. Instead, they should be treated as 
undefined words (and will be kept capitalised) . The utility of this definition comes from the fact 
that usable set theory can be derived using relatively straightforward assumptions on Meaning. 
In particular, if the Meaningful conditions are taken to be extensional equations between two 
prior sets (plus a trivially false condition to get the induction off the ground), then a simple and 
mathematically precise definition is obtained: 

Definition 1.2 

• is a set. 

• If g and h are computable sequences of sets, and if f is a computable sequence such that 
f n is a set if g n — h n , then {/„ | neNAj„ = h n } is a set. 

• All sets are built inductively from in this way. 

• Extensional equality between sets has the expected recursive definition. 



To complete this definition needs only familiar and precise concepts: computability, inductive 
definition, as well as the meaning of extensional equality and the set builder notations. The 
inductive definition is no longer a strict accessibility definition, since extensional equality now 
interacts with the generating clauses for sets. Still, this has an intuitive justification: extensional 
equality is recursively defined in terms of prior sets. This is the same intuition that motivates 
the schema of simultaneous inductive-recursive definition [7] , and in fact this definition will be 
shown to fit into that schema. 

A computable sequence of natural numbers can of course be coded by a natural number, so 
this can be expressed entirely in terms of natural numbers. It can be formalised in first-order 
arithmetic with intuitionistic logic (Heyting arithmetic, HA) plus some axioms for the inductive- 
recursive definition. It leaves no ambiguity as to what a set is. And, with the assistance of 
Extended Church's Thesis (ECT), all of CZF + RDC + EP can be proven from it. ECT is 
incompatible with classical logic, but it is well-known to be conservative over HA, and will be 
shown to also be conservative over the inductive-recursive axioms. 

Definition 1.1, on the other hand, allows progressively stronger assumptions on Meaning, and 
is easier to work with formally. This paper will therefore deal mainly with sets as general well- 
founded extensional computable conditional enumerations. Section 2 starts with no assumptions 
on Meaning whatsoever, and establishes the logical infrastructure of set theory. In section 3, 
with only trivial assumptions on Meaning, the basic sets are constructed. In section 4, ECT is 
added to these trivial assumptions, and almost all of CZF + RDC + EP is proven. A non-trivial 
assumption on Meaning in section 5 allows the proof to be completed. 

In section 6 it is shown that the proof of EP can in fact be strengthened to show the existence 
of Enough Subcountable Projectives (ESP). This results in consequences that are incompatible 
with ZFC, and some basic ones are listed. 

The next three sections go backwards. Sections 7 reverses the interpretation back into CZF, 
providing direct proofs of conservativity results for RDC and ESP. Section 8 gives a different 
reversal into IDi, a classical theory of inductive definitions. Section 9 takes up Definition 1.2, 
and shows that it is subsumed under Definition 1.1 under exactly the assumptions of section 5. 

Then, section 10 continues beyond CZF with an even stronger assumption on Meaning to 
capture Aczel's Regular Extension axiom (RE A), and section 11 reverses the new interpretation 
back into CZF + REA. 

Finally section 12 discusses ECT, and proves conservativity for some restricted forms of EM 
called Omniscience principles, such as the decidability of all sentences of first-order arithmetic and 
of the well-foundedness of computable relations. These may be of interest from a weakly Platonist 
perspective which attributes objectively determinate truth or falsity to statements involving 
natural numbers, but not necessarily to those involving arbitrary sets of natural numbers, or 
involving sets in general. 

2 Logical principles 

From now on, for clarity, the term "v-set" will be used to denote the numerical code for a set 
according to Definition 1.1. In addition to the language of first-order arithmetic, there will be 
three unary predicates, V, M, and T ■ V(x) is to be read "x is a v-set", M(p) is to be read "p is 
a Meaningful condition" , and T{p) is to be read "p is a True condition" . With these, it can be 
specified exactly how a sentence in the language of first-order set theory is to be interpreted. 

The Cantor pairing function from N 2 to N will be denoted by the binary bracket (•, •). (-)l and 
(•)/j denote the corresponding left and right projections. The Kuratowski set-theoretic ordered 
pair will be denoted (>•, •<) to distinguish it from the number-theoretic ordered pair. The coding 



V(x[n}))) -> V(x) 
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<p{x[n]))) ->• (f>(x)) -4 (Vx€N. V(x) - 


4 0(x)) 




(2.2 



of a natural number as a v-set (finite von Neumann ordinal) will be denoted n, to distinguish it 
from n as a natural number. 

Kleene's T predicate and U function will be used. T(e, i,o) asserts that the computation of 
the e th function on input i terminates, and that U(o) is its output. Function application will be 
written by juxtaposition; the sentence ei\, means that 3oGN. T(e, i,o), and the partial term ei 
is equal to U(o) in that case (and will only be used in contexts where it is defined). The term 
An.r(n) is a number for the function computing the expression r. 

The convention that a quantifier binds as far to the right as possible is adopted. A period 
will be placed after the quantifier as a reminder of this. 

The predicate V is inductively defined following Definition 1.1. First introduce an abbre- 
viation x on for the n th condition of the v-set x, and x [n] for its n th conditional element, as 
follows: 

x o n = (xn)n 
x [n] = (xn)L 

(A slight liberty is taken with Definition 1.1, in that the pair of computable sequences has been 
switched for a computable sequence of pairs.) Assume: 

Va; G N. (Vn G N. xn\. A M (x o n) A (T(x o n) 
(Vx G N. (Vn G N. xnl A M (x o n) A (T(x o n) 



(2.2) is a schema in (p. The predicates A4 and T are for the moment completely unspecified, as 
discussed in the previous section. Otherwise, V is just given by an accessibility definition, which 
is immediately constructively valid. 

IND will be an abbreviation for the indices for which the conditions of a v-set are True, and 
EL will abbreviate the elements of a v-set, defined as follows: 

IND(x) = {n G N T(x o n)} 
EL{x) ={x[n] \ne IND(x)} 

To be clear, IND(x) and EL(x) are subclasses of N rather than v-sets in the sense being defined 
here. In particular, membership in EL(x) does not respect extensionality, rather, it ranges over 
the "intensional members" x [n]. Finally, for quantification over all v-sets, define V as another 
subclass of N as follows: 

V = {nGN | V(n)} 

For clarity, ~ will represent the extensional equality between v-sets. The regular = will 
represent the decidable, intensional equality between natural numbers. For ~ it will be necessary 
to introduce a temporary fix-point definition. Assume: 

Vx,yGN. V(x) AV(y) -4 {x ~ y ^(VaeEL(x). 3beEL(y). a ~ b) 

A(VbeEL(y). 3aeEL(x). b ~ a)) ""' 

This assumption is subsumed in section 5. For the membership relation, it will be more con- 
venient not to take it as primitive. Rather, there will be two types of primitive quantifiers, 
bounded quantifiers over a v-set, interpreted as ranging over EL(x), and unbounded quantifiers, 
interpreted as ranging over V. x G y is defined as 3x' G y. x — x' ■ With these, the formal 
interpretation of set theory is complete. 



Theorem 2.1 (Extensionality) If two v-sets have equal members, they are equal. 
Proof: Given the above interpretation, (2.3) is in fact: 

Va;,j/€V. x ~ y -f-> (WaEx. a G y) A (V&Gy. b G x) 



Theorem 2.2 (Set Induction) // a predicate applies to a v-set whenever it applies to all its 
members, then the predicate applies to all v-sets. 

Proof: The inductive definition of V was chosen to make it so. For, if <fr applies to a v-set 
whenever it applies to all its members, then: 

V.XGV. (Vyex. 4>{y)) -» cj>(x) 

which means, 

VxgN. V(x) -> (VyeEL(x). <j>(y)) -)• <j>(x) 

Define the predicate $ as: 

4>'(x) <=> V(x) -»• 0(x) 

Note that the elements of a v-set are themselves v-sets. So: 

VxGN. (VyeEL(x). <j)'{y)) -> 0'(a;) 

which expands to 

VxgN. (VnGN. T(a;on) -)• ^'(x [n])) -"►<£' (a;) 

Furthermore V(x) — > (VnGN. xnl A Ai(x o n)), so, 

VxgN. (VnGN. a;r4A7W(xon) A (T(i«n) ->■ <j>'{x[n}))) -¥ <j>'{x) 
This is the form to which (2.2) applies, so, 

VxgN. V(x) -^<p'{x) 

So finally, 

VxgV. 0(x) 

■ 

Remark: This is the only place where the full strength of assumption (2.2) is used. By restricting 
the predicates to which induction applies in (2.2), it may therefore be possible to obtain a 
version of this interpretation which validates CZF with a correspondingly restricted form of Set 
Induction, and this would have a predicative justification in the stricter sense of Schutte and 
Feferman [8]. 

Lemma 2.3 Extensional equality is reflexive, symmetric, and transitive. 

Proof: Symmetry is immediate from the fix-point definition of ~. Rcflexivity and transitivity 
are shown by Set Induction. Suppose, for an inductive hypothesis, that each clement of a v-set 
is equal to itself. It then follows from the fix-point definition of ~ that the v-set is equal to itself. 
Given v-sets x and z, suppose, for a doubly inductive hypothesis, that for any a in a; and c in z, 
if there is a b such that a ~ b A b ~ c, then a ~ c. If there is a y such that x ~ y A y ~ z then for 
any a in x, there is a b in y such that a ~ b, and for that b there is a c in z such that b ~ c, so 
by hypothesis a ~ c. Conversely for every c in z there is an a in s such that c ~ a. So, cc cz z. I 



Lemma 2.4 Extensional equality has the substitution property for sentences of first- order set 
theory. 

Proof: Proceed by induction on the structure of the formula. The base case is equality between 
two v-sets, and this is given by the previous lemma. For the propositional connectives and 
unbounded quantifiers it follows from intuitionistic predicate logic. What has to be considered 
is whether bounded quantification over extcnsionally equivalent domains is equivalent. So, given 
x ~ y, take for inductive hypothesis that 



It must be shown that 
and that 



\/u G x. \fv G y . u ~ v — > (<fi(x, u) <H> <p(y, v)) 

(3u Gx. (f>(x, u)) -o- (3v£y. <j){y,v)) 
(VuG.t. (f)(x,u)) <-» (VwGy. 4>(y,v)) 



So, for the existential quantifier, suppose 3u€ EL(x). <f)(x,u). Now x ~ y so \/uEEL{x). 3v G 
EL(y). u ~ v, so using the inductive hypothesis, it follows that 3v G EL{y). <p(y,v) as re- 
quired. The other direction works the same way. For the universal quantifier, suppose \/u G 
EL(x). <p(x,u). Now x ~ y, so \fv G EL(y). 3u G EL(x). v ~ u, so again using the inductive 
hypothesis, it follows that Vw (^EL(y). 4>{y,v), as required, and again the other direction works 
the same way. I 

Lemma 2.5 Over formulas of first- order set theory, bounded quantification is equivalent to its 
usual definition in terms of unbounded quantification and the membership relation. 

Proof: Usually, they are defined as 

(3yex.cj)(y)) ^> (3yeY.(yex)Acj)(y)) 
{Vy£x.<j>{y)) ^=^ (VyGV. (y ex) -+ (f>{y)) 

Whereas in this interpretation, the bounded quantifiers range over EL, and y G x means 3y' G 
EL{x). y ~ y'. So the existential case becomes 3y G EL(x). cj){y) on the left-hand side and 
3y G V. 3y' G EL(x). y ~ y 1 A 4>(y). As noted above, EL does not respect extensionality. 
Nevertheless, in the case where is a formula of first-order set theory, the previous lemma 
applies, together with the fact that the elements of a v-set are v-sets, to show the equivalence. 
Similar considerations apply to the universal case. H 

Theorem 2.6 IfV is taken as the domain of discourse, extensional equality is taken as the equal- 
ity relation, and the membership relation is taken as the only other predicate, then intuitionistic 
predicate logic with equality is valid. 

Proof: Intuitionistic predicate logic is valid for number theory. Extensional equality has the 
correct properties for equality The propositional connectives are interpreted as themselves. The 
unbounded quantifiers are simply quantifying over N and relativised to the inhabited predicate 
V. Finally, the bounded quantifiers arc equivalent to their usual definitions. ■ 



3 Basic constructions 

To proceed, some temporary, trivial assumptions about M. and T are made. These assumptions 
are subsumed in section 5. 

Definition 3.1 T is a Meaningful condition which is True, and J- is a Meaningful condition 
which is not True. fl(p, q) is a condition which asserts that bothp and q are True; it is Meaningful 
if p is a Meaningful condition, and if p being True would imply that q is a Meaningful condition. 

Theorem 3.2 (Empty Set) There is a v-set with no elements. 

Proof: It is given by: 

= kn.(z,l) 

Z is an irrelevant constant. ■ 

Theorem 3.3 (Pairing) For any two v-sets, there is a v-set with those two v-sets as elements. 

Proof: If x and y are sets, their pairing can be given by: 

, -, , \ (x, T), if n is even 
{x, y} = An. {) ' 

I (y, T), if n is odd 



Lemma 3.4 Definition 1.1 extends to computable partial sequences, as follows: suppose x is 
a computable partial sequence such that, for all n, if xn is defined then x o n is a Meaningful 
condition, and if furthermore x o n is True then x [n] is a v-set. Then Drr = {x [n] n £ 
N A xn\. A (x o n is True)} is a v-set. 

Proof: Define: 

jp HT(x,n,u) 
T (x,n,u,p) = < 

I _L otherwise 

Da; = An.(TJ(n R ) L ,T (x,n L ,n R ,U(n R ) R )) 

This will meet the requirements. For, 

T>x~{\5{n R ) L \neN AT(T {x,n L ,n R ,U(n R ) R ))} 
~ {U(u) L n, ueN A T(T (x, n, u, U(u) fl ))} 
~ {V(u) L | n,u(=NAT(x,n,u) AT{U(u) R )} 
~ {{xn) L | neN AxnlAT((xn) R )} 
~ {x [n] | nSN A xn\. A T(x o n)} 



Theorem 3.5 (Union) Given a v-set x, there is a v-set whose elements are the elements of the 
elements of x. 



Proof: The required v-set is given by: 

[Jx = DAn.(x[n L ] [n R ] ,U(xonL,x [n L ] on R )) 

y is an element of (J x if and only if there is an n such that Tl(x o n^, x [til] o np) is True and 
y ~ x [rii] [n#]; this means there is an n and an to such that II(x o n,x [n] o to) is True and 
y ~ x [n] [to]. By the Truth conditions of II, this means that x on and x [n] o to are True. The 
Truth of x o n means that x [n] an element of x, and the Truth of x [n] o to means that x [n] [to] 
is an element of x [n]. So, the elements of (J x are indeed the elements of the elements of x. I 
Remark: The asymmetry in Definition 3.1 for II to be Meaningful is used here: x [n] o to can 
only be assumed to be Meaningful when x [n] is a v-set, which can only be assumed when x on 
is True. Indeed x [n] o to can only be assumed to be defined when ion is True, so the Lemma 
3.4 must apply. 

Theorem 3.6 (Infinity) There is an inhabited v-set such that each of its elements is also an 
element of one of its elements. 

Proof: The first infinite von Neumann ordinal, u>, is such a v-set: 

lu = An.(fn, T) 
where / maps the natural number n to the v-set n, and can be given by general recursion: 

/ = An. Am. (/to, A(m, n)} 

IT if to < n 
A(m, n) = < 

I _L if to > n 

By ordinary induction (induction over N), all the n's are v-sets, and therefore so is u>. I 

4 The red pill 

So far Extended Church's Thesis has not been invoked. The proofs of the previous sections are 
valid classically and constructively. To proceed to prove the classically unprovable principles of 
Replacement, Exponentiation, Dependent Choices, and Enough Projectives, it will be necessary 
to leave neutral territory. 

In constructive mathematics, Church's Thesis refers to the classically impossible assumption 
of Markov's school of constructivism that all sequences are computable. An even stronger form, 
ECTo, was introduced by Troelstra [18]. It is the schema: 

(Vn E N. 4>(n) ->■ 3to e N. ip(n, m)) ->■ 3e e N. Vn e N. <j>(ri) -4 en\. A ip(n, en) 

where is a so-called almost-negative sentence of arithmetic, ip is not constrained. The almost- 
negative sentences include the £i sentences (existential quantifiers over N directly in front of 
quantifier-free formulas of primitive recursive arithmetic) and are closed under conjunction, im- 
plication, and universal quantification over N. Note that en\ is Si, therefore almost-negative. 

Essentially, ECTo means that a statement of first-order arithmetic is true if and only if it 
has a computable witness, as given by the standard realisability clauses for arithmetic. The 
almost-negative sentences are essentially those which are already in the form "e witnesses 0" . 

Here an assumption is required that will be called ECTy. It is the same schema as ECTo, 
but the class of almost-negative sentences allowed in the antecedent is expanded to include the 



new predicates V, M., and T . The choice of defining assumptions for these predicates will make 
it possible to consider them almost-negative, as later shown by Meta-theorems 7.4 and 11.5. 

The assumption that T is almost-negative means that only almost-negative sentences can 
be considered Meaningful. This is not entirely faithful to the informal reading of "meaningful" , 
but from the point of view of set theory, this restriction results in no loss of generality, since 
ECTv allows any sentence to be converted into a single existential quantifier over N in front 
of an almost-negative sentence, and {fn | n e N A 3e e N. </>(e, n)} is extensionally equal to 
{/(^-l) I n£N A (f>(riL,nji)}. (Actually Definition 1.2 is an example of this, see section 9.) 

The relation c± cannot be considered almost-negative and so cannot appear in the antecedent 
of ECTv- Instead a new temporary predicate 1Z is defined as a fix-point: 

Va;,y<EV. 1Z(e,x,y) f* (\/n£lND(x). e L n\- A (e L n) L e IND(y) 

A TZ((e L n) R ,x[n],y[(e L n) L })) 

A (VnelND(y). e fl n| A (e R n) L 6 IND(x) [ ' 

A lZ((e R n) R ,y[n},x[(e R n) L })) 

Essentially 7Z(e, x, y) says that e witnesses x ~ y. Lemma 4.6 below shows that ~ can be defined 
in terms of 1Z, and so the assumption (2.3) is no longer needed. Here it will have to be assumed 
that 1Z is almost-negative. This is justified in the next section where 1Z will be defined in terms 
ofT. 

Other than the two meta-theorems mentioned above, realisability will not be used explicitly; 
it will all be implicitly contained in ECTv- Also, the other principle used by Markov's school, 
namely Markov's principle, will not be used at all. Finally, the adjective "computable" is now 
vacuous and will be dropped. 

Theorem 4.1 (Strong Collection) Suppose ip is an arbitrary binary relation (not necessarily 
a v-set), x is a v-set, and to every element of x there is at least one v-set related to it by ip. 
Then there is a v-set which contains, for each element of x, at least one v-set related to it, and 
contains only such related v-sets. 

Proof: The hypothesis is that 

VffiGs. 36eV. ip{a,b) 

which means that 

VneIND{x). 3beY. xp(x[n],b) 

Since IND is defined in terms of T, which is almost-negative, ECTv applies: 

3eeN. \fneIND(x). enlAV(en) Aip(x[n] , en) 

Define: 

y = DAn.(en, x o n) 

If x o n is True then en is defined, so Lemma 3.4 applies, y meets the requirements. For, 

y ~ {en | n <G IND(x) A en{} 

The elements of y are equal to en for some n € IND(x). By the properties of e, V(en) and 
ip(x [n] , en), so y is indeed a v-set, and each of its elements is related to some element of x by 
ip. Conversely by the properties of e, en is in fact defined for all n G IND(x), so for any given 
element of x, y does contain at least one v-set related to it. ■ 

Remark: ECTv in the above construction cannot guarantee en is a v-set unless x o n is True. 
Since the Truth of this condition is generally not even semi-decidable, e cannot be patched to 
output only Valid sets. This is why Definition 1.1 only requires x [n] to be a v-set if x o n is 
True. 



Corollary 4.2 (Replacement) Suppose ip is an arbitrary binary relation, x is a v-set, and to 
every element of x there is exactly one v-set related to it by ip. Then there is a v-set which 
contains all and only the v-sets that are related to some element of x. 

Theorem 4.3 (Subset Collection) Suppose x and y are v-sets, and tjj is an arbitrary ternary 
relation. For any c, let ip c denote the binary relation resulting from setting c as the third argument 
of ip. Then there is a v-set z which collects all the ip{x)- sub sets of y, in the following sense: for 
any v-set c, if to every element of x there is at least one element of y related to it by ip c , then, z 
contains a subset of y which in turn contains, for every element of x, at least one element related 
to it by %p c , and contains only such related elements. 

Proof: Given v-sets x and y, define: 

w = Ae.T)An.(y [en] , Tl(x on,yo en)) 

z = Ae.(we, T) 

For any e, Lemma 3.4 applies, since ion is Meaningful, and if en is defined then y o en is also 
Meaningful, and its Truth implies that y [en] is a v-sets. Therefore we is always a v-set, so z is 
a v-set as well. Moreover, we is always a subset of y. Now, suppose c is a v-set, and 

VaGx. 3&Gy. ip(a, 6, c) 

This means: 

ynelND(x). 3meIND(y). tp(x[n] ,y[m] , c) 

And again ECTy gives the existence of an e such that: 

Vn G IND(x). eral A en G IND(y) A ip(x [n] ,y[m], c) 

Now, 

we ~ {y [en] nGN A en\. A T(x on) A T(y o en)} 
~ {y [en] \ n G IND(x) A enl A en G IND(y)} 

By the properties of e, each element of we is related by tp c to some element of x, and conversely 
for each element of x, we has an element which is related to it. In turn, we is an element of z. 
So z is a subset collection as required. ■ 

Theorem 4.4 (Enough Projectives) Every v-set x is the image of a v-set y that is "projec- 
tive", meaning that any v-set which is a binary relation whose domain is a superset of y, is itself 
the superset of a v-set that is a choice function with domain y. 

Proof: Given a v-set x, let / = An.{fyn,x [n] §,xon) and y = An.(n,x on), f is a set-theoretic 
surjection from y onto x. To see that y is projective, suppose g is a relation as in the hypothesis. 
Then: 

Va € y . 3b g V. £a, 6<) G g 

And again, ECTy applies to give an e such that: 

ynGlND(y). en], A en G V A fyy [n] , enij G g 

And furthermore y on = x on and y [n] = n. Define: 

h = DAn.(j>n, en<), x on) 

If x o n is True then en is defined, so Lemma 3.4 applies. All the n's are distinct, so h is in fact 
a function. Moreover it is a subset of g, and its domain is y. It is therefore a choice function as 
required. ■ 
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Theorem 4.5 (Dependent Choices) Suppose z is a v-set, tp is an arbitrary binary relation, 
and to every element of z there is an element of z related to it byip. Then to every x £ z there is 
a v-set which is a choice sequence of elements of z (function with domain u) and range a subset 
of z) starting with x and such that each successor is related to its predecessor. 

Proof: It can be shown to follow from Enough Projectives [1, §8.3], but here, it is simple enough 
to construct directly. By hypothesis, Vm£z. 3vEz. ip(u,v): apply ECTy to get an e such that: 

VnElND(z). en[ A en £ IND(z) A ip(z [n] , z [en]) 

Given x £ z there is an no £ IND(z) such that z [no] ~ x. Define / by primitive recursion such 
that /0 = no and /(n + 1) = e(fn). Then define: 

g = An.(t?n,z[fn]§,T) 

This v-set is the required choice sequence. I 

Lemma 4.6 For any two v-sets x and y, x ~ y if and only if there is an e such that lZ(e, x, y). 

Proof: Given some e: 

K{e, x, y) ^(\fneIND(x). e L n\ A (e L n) L £ IND(y) A TZ((e L n) R , x[n],y [{e L n) L ])) 
A(VneIND(y). e R niA(e R n) L £ IND(x) A Tl((e R n) R , y [n] ,x [{e R n) L ])) 

Take, for a doubly set-inductive hypothesis, that for any element a of x and any element b of y, 
a ~ b if and only if there is an / such that lZ(f, a, b). So, if Be £ N. lZ(e, x, y) it follows that: 

(VnElND(x). 3meIND(y). x[n] ~ y[m}) A (\/m€lND(y). 3nElND(x). y[m] ~z[n]) 

And conversely, by ECTy, the above implies 3e£N. lZ(e,x,y). But the above means that 

(Va£a;. 3b £y. a ~ b) A (V6£y. 3a Ex. b ~ a) 

Which, by (2.3), just means 

x ~y 

So, by Set Induction, 

x ~ y -h> 3e£N. 1Z(e,x,y) 

■ 

Lemma 4.7 For any sentence 4> expressible in the language of first- order set theory, there is an 
almost-negative predicate <j>' such that <f> <^=> 3e£N. <f>'{e). 

Proof: This transformation is effected recursively on the structure of <j>. 

• The transformation of the base case x ~ y is given by the previous lemma: TZ(e, x, y). 

• The other base case, _!_, transforms to itself. 

• Conjunction, disjunction, and the existential quantifiers are straightforward: 

(3e£N. 4>'{e)) A(3e£N. tp'(e)) o 3eeN. {<j)'(e L ) Aip'(e R )) 

(3e£N. 4>'(e)) V (3e£N. ip'(e)) o 3e£N. (e L = -4 <j>'(e R )) A (e L ^ -4 ip'(e R )) 
(3xey. 3e£N. c/>'{e,x)) o 3eeN. T(y oe L ) A <f>'{e R ,y [e L ]) 
(3xeY. 3eeN.(j)'(x)) o 3eeN. V{e L ) A 4>'(e R , e L ) 
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• Implication and the universal quantifiers require ECTy for their transformation: 

({3eeN. 4>'(e)) -4 (3eeN. V'(e))) «-► 3eeN. V/eN. <£'(/) -)• e/| A V'(e/) 

(Vxey. 3eeN. <f>'(e,x)) o 3eeN. VneN. T(yon) -)■ en| A </>'(en,y [n]) 
(VzeV. 3egN. 4>'{e,x)) <-► BeeN. VxeN. V(x) -*• exj. A <j>'{ex,x) 

The resulting formulas are in the right form, given that 7?., 7", and V are almost-negative. ■ 

Theorem 4.8 (Relativised Dependent Choices) Suppose <j> is a unary predicate expressible 
in the language of first- order set theory (i.e. a class), ip is an arbitrary binary relation (not 
necessarily a class), and to each x satisfying <f> there is at least one y satisfying 4> that is related 
to it by ip. Then, to every x satisfying <p there is a choice sequence of v-sets, all of which satisfy 
4>, starting with x and such that each successor is related to its predecessor by ip. 

Proof: The hypothesis is that: 

VxeV. 4>{x) ->• 3yEY. 4>{y) Aip{x,y) 

p is not necessarily in a form to which ECTy can be applied. The previous lemma is used to 
transform the hypothesis into: 

V.tgV. (3/eN. 4>'{f,x)) -»■ 3yeV. (3.geN. <f>'{g,y)) A ^[x,y) 

Applying ECTy to this transformed hypothesis results in an e such that: 

Vx€W.Vf<=K <p'(f,x) ^e(x,f)lAV((e(x,f)) L ) 

A <f>'((e(x, f)) R , (e(x, f)) L ) A ^(x, (e(x, f)) L ) 

Now, given a v-set x such that 4>(x), there is an / such that (j)'(f,x). So define a sequence j by 
primitive recursion on e: 

.70 = (x, f) 
j(n+ 1) = e(jn) 

The actual set-theoretic choice sequence is given by: 

k = An.((>n, {jn)L§, T) 



5 The missing piece 

One important principle of CZF is missing: Bounded Separation. For this, a non-trivial assump- 
tion on Meaning is needed. Under this assumption it will be shown that 1Z can be defined in 
terms of 7", so assumption (4.1) from the previous section can be dropped. It will also be shown 
that Definition 3.1 is redundant. This will leave just first-order arithmetic, the predicates V, M, 
T, the schema ECTy, the assumptions (2.1) and (2.2), and two more assumptions below, (5.1) 
and (5.2). 

So far only closure under conjunction was required. To proceed, one may expect that Meaning 
will require closure under the remaining propositional connectives and quantifiers. As discussed in 
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the previous section, only almost-negative sentences need be considered Meaningful. Si sentences 
are therefore taken to be Meaningful, and Meaning is taken to be closed under implication and 
universal quantification. The latter means that given a sequence of Meaningful conditions, there 
is another Meaningful condition expressing their infinitary conjunction. To simplify the formal 
treatment, these are combined into a single operator. 

Definition 5.1 S(/, g) is a condition which asserts that, for all n, whenever fn is defined and 
True, gn is also defined and True. It is Meaningful if for all n, when fn is defined, it is 
Meaningful, and when fn and gn are defined and fn is True, gn is Meaningful. 

It is not hard to see that this captures all of the above, including the asymmetrical Meaning 
conditions on II of Definition 3.1. Now, formal assumptions on M and 7" are made following 
Definition 5.1. Assume: 

V/, 5 eN. M(E(f,g)) -> (T(5(/,0)) o (VneN. /ra| A T(fn) -»■ gnl A T{gn))) (5.1) 

V/,.geN. (VraeN. /raj. -)• M(fn)) A (VraeN. /raj. A gni AT(fri) -*• M{gn)) ->M(E(f,g)) 

(5.2) 

Theorem 5.2 'Meaningful" is not a Meaningful adjective. That is, there is no u such that 
/i(ra, rra) is defined and Meaningful for all n and m, and such that n is Meaningful if and only if 
there exists an m such that u(n, rra) is True. 

Proof: First define: 

v = Ara.S(Am.ra, Am._L) 

This is just a negation operator, vn is Meaningful iff ra is, and it is True iff ra is not True. Now, 
if there were a [i satisfying the hypothesis, then an extended negation operator could be defined: 

v = Ara.S(Arra./x(ra, m), Am.un) 

By hypothesis, /u(ra,m) would be Meaningful for all ra and rra, and if fj,(n,m) is True then n is 
Meaningful. So, by the Meaning conditions for S, vn would be Meaningful for all ra. It would 
be True iff n being Meaningful implied that ra is not True. Now define by general recursion: 

And this is a contradiction, because L would be Meaningful, and L would be True iff L were not 
True. So, there is no such \x. ■ 

Lemma 5.3 Given a number e and v-sets x and y, there is a Meaningful condition lZ(e,x,y) 
which can be constructed using only the operator S and such that T(TZ(e, x, y)) f-> lZ(e, x, y). 

Proof: Define 1Z by general recursion: 

ft(e, x, y) = U(H(e L ,x, y),H(e R , y, x)) 
H(e, x, y) = S(Ara.x o ra, Ara. J(n, (en)i,, (era)/j, x, y)) 
J(ra, m, e, x, y) — 0(j/ o rra, 1Z(e, x [ra] , y [m])) 

II can of course be expressed in terms of S. 

Now, H(e, x, y) is always defined, so TZ(e, x, y) is too. Given v-sets x and y, take, for a doubly 
set-inductive hypothesis, that 1Z(f, a, b) is Meaningful for all numbers /, all elements a of x, and 
all elements b of y. x o n is always Meaningful; if true, then x [n] is a v-set and an element of x. 
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The same goes for t/om are y [to]. By the inductive hypothesis, H(e,x,y) is Meaningful, and so 
is 1Z(e,x,y). So by Set Induction 1Z is Meaningful for all v-sets. 

Now take for inductive hypothesis that 7Z(f, a, b) has the right Truth conditions for all num- 
bers /, all elements o of x, and all elements b of y. The Truth conditions of TZ(e, x, y) expand 
to: 

T(K(e, x, y)) ^(VneIND{x). e L n[ A {e L n) L E IND(y) A T(TZ{{e L n) R , x[n],y [{e L n) L ]))) 
A(VneIND(y). e fl n| A (e R n) L e IND(x) A T(K((e R n) R , y[n],x [(e R n) L }))) 

This matches (4.1), so, by Set Induction, 1Z has the right Truth conditions. ■ 

Lemma 5.4 (Kronecker Delta) For any two v-sets x and y, there is a v-set which is a subset 
of 1 and which is inhabited if and only if x ~ y. 

Proof: It is given by 

S xy = An.(Q,lZ{n,x,y)) 

It follows from Lemmas 4.6 and 5.3 that G 5 xy f-> x ~ y, and clearly is the only possible 
element of 5 xy , so 5 xy CI. ■ 

Lemma 5.5 (Inflmum) For any v-set x whose elements are all subsets of 1, there is a v-set 
which is a subset of 1 and which is inhabited if and only if all the elements of x are inhabited. 

Proof: A subset of 1 is inhabited if and only if it is extensionally equal to 1. Use Replacement 
to form a v-set x in which all the elements of x are replaced by 1. Then x ~ x if and only if all 
elements of x arc inhabited. So, using the previous lemma, S xx is the required inhmum. ■ 

Theorem 5.6 (Bounded Separation) Suppose y is a v-set, and (f> is a unary predicate which 
can be expressed in the language of first- order set theory with only bounded quantifiers (that is, 
the quantifiers 3x€y. and VrrGy. )■ Then there is a v-set containing all and only the elements 
of y which satisfy cf>. 

Proof: It can be shown that this follows from Extcnsionality, Empty Set, Pairing, Union, 
Replacement, Kronecker Delta, and Infimum [1, §3.3]. (And in fact Inhmum follows from the 
others, as shown above.) ■ 

Theorem 5.7 (Exponentiation) For all v-sets x and y, there is a v-set x y of all functions 
from x to y. 

Proof: Define the relation tp as 

tp(a,b,c) ^=^> b e c A 3deY. b ~ £a, d§ 

If c is a function from x to y, then every element of x is related to exactly one element of x x y by 
ip c , and the collection of all such elements of x x y is c itself. Using Subset Collection it follows 
that there is a v-set which is a superset of x y. The property of being a function from x to y can 
be expressed by a bounded formula, therefore Bounded Separation applies to get exactly x y. H 
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6 Six impossible theorems before breakfast 

The results from the previous sections are classically and constructively valid. They are all 
theorems of CZF + RDC + EP, which in turn is a sub-theory of ZFC. Conversely they 
axiomatisc CZF + RDC + EP. As remarked in section 1, adding the principle of the Ex- 
cluded Middle has the following effect: CZF + EM = ZF, CZF + RDC + EM = ZF + DC, 
CZF + RDC + EP + EM = ZF + EP; not much is known about the latter, other than that 
ZF + DC < ZF + EP < ZFC. 

Though the results are valid, the proofs of these results are, in sections 4 and 5, classically 
invalid, because ECT contradicts EM. ECT should be expected to have set-theoretic conse- 
quences that are incompatible with ZFC. In this section, a few basic ones are mentioned. They 
are all fairly straightforward consequences of the first theorem, ESP. As will be shown in the 
following section, ESP is conservative over CZF + RDC. This is in contrast with EM, which 
is highly non-conservative in this setting: ZF proves the consistency of CZF, indeed, CZF is 
provably consistent, by transfinite induction up to the Bachmann-Howard ordinal, while ZF is 
far beyond any system for which a constructive consistency proof is known [12]. 

Theorem 6.1 (Enough Subcountable Projectives) Every v-set is the image of a v-subset 
of lu which is also projective. 

Proof: Actually, in the construction of Theorem 4.4, the projective v-set was already a subset 
of to. ■ 

Corollary 6.2 (Subcountability) Every v-set is subcountable, that is, the image of a v-subset 
ofui. 

Theorem 6.3 The Power Set principle is false. In particular, P(oj), the class of all v-subsets of 
u>, is a proper class. 

Proof: This is an adaptation of Cantor's diagonal theorem. Suppose P(w) were a v-set. By 
the above, it would be subcountable. There would be an x C lo and a surjective / : x -» P(w). 
The "Cantor diagonal set" C = {y £ x \ y £■ f(y)} would be a v-set, by Bounded Separation, 
and C C x C lo. So by /'s surjectivity, C ~ f(z) for some z <E x, and it would follow that 
zeCoz^C. Contradiction. ■ 

Remark: On the other hand, u lo is a v-set, by Exponentiation. It can be shown, by a different 
adaptation of Cantor's diagonal theorem, that u w is not countable. But it is subcountable. 

Corollary 6.4 Even P(l) is a proper class. 

Proof: Suppose P(l_) were a v-set. Then for any v-set x, X P(1_) would be a v-set, by Exponen- 
tiation. But, K P(1) is isomorphic to P(x). Specifically ¥(x) = {{y e x | e f(y)} | / G X P(1)}; 
the inner set is a v-set by Bounded Separation, and then P(x) would be a v-set by Replacement. 
But lo is a v-set and P(w) is not, so P(l) is not either. ■ 

Remark: A proof giving a different perspective is that if P(l_) were a v-set, then "Meaningful" 
would be Meaningful. That is, from a v-set x and a witness that x has the properties of P(l), a 
/j, which violates Theorem 5.2 can be constructed. This construction is omitted here. 

Theorem 6.5 The unrestricted principle of Choice is false. 
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Proof: This is an adaptation of Diaconescu's result [6]. Given any x C 1, define: 

A= {n£2\n~0V (n^lAOex)} 

B = {ne2|ri~lV(n-0A0ei)} 

and these are v-sets by Bounded Separation. Applying the principle of Choice to {A, B}, there 
would be a choice function / such that f(A) G A A f(B) G B. By definition of these two v-sets, 
(f(A) -0V {,f {A) ~lA0ea;))A (f(B) ~ 1 V (f(B) ~ A € x)), from which it would follow 
that f(A) <£. f{B) VOei. But if G x then by the definitions, A ~ B, and by Extcnsionality, 
/(A) ~ f(B). So /(A) ^ f(B) -)• £ x, and as a result g x V G x. So a; ^ V x ~ 1, but 
x was an arbitrary element of P(l). So, P(l) ~ {0,1} ~ 2. But 2 is a v-set, while P(l) is not. 
Contradiction. ■ 

Theorem 6.6 The Foundation principle is false: not all inhabited v-sets are disjoint from one 
of their elements. 

Proof: Suppose all inhabited v-sets were disjoint from one of their elements. Consider again 
any x C 1 and the corresponding set B defined in the previous proof. It is inhabited and would 
be disjoint from one of its elements, n. By definition of B, n ~ 1 or n ~ A G x. In the former 
case, if B were disjoint from 1, meaning g - B, then G" x. In the latter case of course G x. 
So again, x V G x, and x was arbitrary, so P(l) ~ 2. Contradiction. ■ 
Remark: As mentioned in section 1, a contrapositive form of Foundation is a theorem: no 
inhabited v-set intersects all of its elements. 

7 CZF through the looking glass 

The assumptions (2.1) and (2.2) are a standard accessibility definition. The assumptions (5.1) 
and (5.2) are a special case of inductive-recursive definition: here, the Meaningful sentences 
are being inductively generated, but this depends on Truth, which is defined recursively at the 
same time. However, no induction principle corresponding to (5.2) is assumed, so by themselves 
(5.1) and (5.2) are actually a very weak form of inductive-recursive definition. This is roughly 
analogous to the simple universe construction in Martin-L6f type theory [11]. It could likely be 
given a predicative justification in the stricter sense of Schiitte and Feferman [8], though this is 
not attempted here. 

In any case, such definitions are within the power of CZF. To interpret M. and T set- 
theoretically, define the following classes: 

$ = {(>M 7 a$ | Bf,geu. a ~ $E(f,g),Z(f,g,M)$ A / G X(M) A £/,«?<} G Y(M)} 

X{M) = {/ G lo Vneuj. fni^3heY. t>fn,h$ G M} 

Y(M) = {<?f,g$ ecu 2 | Vnew. M Agnl A ($fn,l$ eMj^leV. §gn,h$ e M} 

Z(f,g,M) = {0 | VnG^. (M A $/n,l$ G M) -»■ (j4A^,l^ G M)} 

The Class Inductive Definition Theorem can be proven in CZF [1, §5] , by which the least $-closed 
class, M°°, can be formed. "$-closed" means that if M is a subset of M°°, and ^M,a^ G <fr, 
then a G M°°; M°° is a subclass of any class with this property. 

Take M(x) to mean 3ft eV. §x,h§ G M°° and T(x) to mean §x,l§ G M°°. The interpreta- 
tion of V comes easily. Define the classes: 

% = {§V,x$ \xePnQ(V)} 

P = {x Eoj | Vneu). xr4A3ftGV. ^x o n, h$ G M°°} 
Q(V) = {x G u | VnGw. xnlA {§xon,l§ G M°° ->• x [n] G V)} 
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Form the least ^-closed class, V°° . Take V(x) to mean x G V°° . 

Lemma 7.1 M°° is coherent. That is, if there are x, h, and h' such that {>£, ft<) G M°° and 
§x,h'§ £ M°°, then h ~ ft' . 

Proof: Define the coherent subclass of M°° as follows: 

M' = {t>x,h§ G Af°° | Vft'gP(l). £a;,ft'<} G M°° -4 ft ~ ft'} 

M' will in fact be closed under the same operator $ that defined M°° above. To see this, suppose 
M is a subset of M', and a is a set such that §M, a§ G $. Then, by definition of $, there are 
/, g G cj such that a ~ ^E(f,g),Z(f,g,M)§. Z(f,g,M) is a valid set because M is, and Z is 
otherwise given by a bounded formula. Furthermore, / G X(M), so for all n, if fn is defined 
then there is a j G P(l) such that ^>fn,j§ G M. M is a subset of M', so by definition of M', 
this j is unique (up to cxtcnsional equality). Similarly £ /,<?<) G Y(M) so for all n, if fn and an 
are defined and fyfn, 1$ G M then there is a unique fc G P(l) such that fygn, fee) G M. 

Now a G M°° since M C M°° and (>M, a<) G $. Suppose there is another (>£(/, 5), ft'<) G M°°. 
Then there exists a set N C M°° such that / G X(JV), £/, 3 <) G F(AT) and ft' ~ Z(f,g,N). By 
definition of X, for all n, if /n is defined there is a j' G P(l) such that §fn,j'§ G iV. But these 
are the same /n's as above, and the corresponding j's are unique, so j' ~ j. There is a similar 
argument for y. Therefore .£(/, g, M) ~ Z(/, g, TV), which means that ft ~ ft'. 

So, ft being unique, a G M', and the class M' is $-closed. But M°° is the least such class, so 
all of M°° is coherent. ■ 

Lemma 7.2 In M°° , (5.1) and (5.2) are true. 

Proof: Suppose / G X(M°°) and $>f,g$ G Y(M°°). By the previous lemma the corresponding 
(>/n, j§ G M°° and ^gn, fc<) G M°° are unique, so by Replacement and Bounded Separation the 
following are sets: 

M x = {§fn,j$ G M°° I n G lu A /n|} 

M r = {{>5«! fcc ) e M°° newA /ni A .gn| A f/n, lc) G M x } 
h = Z(f l9 ,M x UM Y ) 

f G X(M X U M Y ) and (>/,#<) e F(M X U My), and M°° is $-closed, so §E(f,g),h$ G M°°, so 
E(f,g) is Meaningful as required by (5.2). Finally, Z expresses the correct Truth conditions for 
(5.1). ■ 

Lemma 7.3 In V°° and M°°, (2.1) and (2.2) are true. 

Proof: P and Q directly encode the conditions expressed by (2.1); (2.2) follows from the 
minimality of V°° . I 

Meta-theorem 7.4 Assumptions (2.1), (2.2), (5.1), and (5.2), along with ECTy, are true in 
a realisability interpretation, provided that the four assumptions hold (without ECTvJ in the 
underlying meta-theory. 

Proof: The realisability interpretation is simply the standard one for first-order arithmetic, with 
the additional clauses that witnesses for V, M., and T are trivial, that is: 

(elhV(x)) <=> V(x) 

{e\hM(x)) ^=^ M(x) 

(e Ih T(x)) 4=> T(x) 
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The proof of ECT is standard [18], and with these clauses it extends to ECTy trivially. 
Moreover, since V, M. 1 and T are almost-negative, it immediately follows that (2.1), (5.1), and 
(5.2) are almost-negative. They are simply true if they are true in the meta-thcory. 

What remains, then, is (2.2). This is a schema, and for some instances the witness needs to 
do something non-trivial, but one can be given whose validity is proven in terms of instances of 
the same schema in the meta-theory. Define by general recursion: 

p = Ae.Ax.(e x)(An.(pe)(x [n])) 

Here e' is a simple syntactic transformation introduced below for clarity of presentation. It will 
follow that (pe)x iterates e by set recursion along x, and as a result, p witnesses (2.2) for any <f>, 
provided (2.2) holds in the meta-theory. 

Suppose e witnesses the antecedent of (2.2): 

e lh VxeN. (VraeN. xni A A4(xon) A (T(xon) -> 4>{x [n]))) ->• <p(x) 

This means that: 

Vx, aeN. (VneN. xn\. A M (x o n) A (T(xon) ->• ara| A (an lh </>(x [n])))) 
— ► (e x)ai A (e x)a lh </>(x) 

The syntactic transformation e i-> e! is chosen so that e ignores the trivial witnesses for M., T, 
and xn4- Given a set x, suppose that by way of inductive hypothesis: 

Va G x. (pe)aj. A (pe)a lh 0(a) 

This means that 

VneN. T(xon) -4 (pe)(x [n])i A (/0e)(x[n]) lh </>{x[ri\) 

And since x is Valid, 

Vn e N. xr4 A A4 (x o n) 

So, substituting An.(pe)(x [n]) for a in the assumption on e, it follows that 

(e'x)(An.(pe)(x [n]))| A (e'x)(An.(pe)(x [n])) lh <j>{x) 

By definition of p, 

{pe)x\. A (pe)x lh 0(x) 

Therefore, if (2.2) holds in the meta-theory then Set Induction applies, and for all e witnessing 
the antecedent of (2.2) and all sets x, (pe)x lh 4>{x). This means p witnesses (2.2) for any (j>. So, 
the four assumptions all pass through from the meta-theory. ■ 

Meta-theorem 7.5 CZF + RDC + ESP can be interpreted in CZF without Subset Collection 
(CZF~ ) in a way which preserves almost-negative formulas of arithmetic. That is, there is a 
translation of propositions <p h- > (f>* such that, if CZF + RDC + ESP proves 4>, then CZF~ 
proves <jf ; furthermore, if <j) is an almost-negative formula of arithmetic, CZF— proves <p <-> (p* . 

Proof: Lemmas 7.2 and 7.3 made use only of arguments available in CZF - , including the 
proof of the Class Inductive Definition Theorem [1, §5] which specifically states it does not 
require Subset Collection. Therefore the four assumptions can be embedded into CZF - . The 
realisability interpretation of Meta-theorem 7.4 preserves almost-negative formulas of arithmetic, 
and the interpretation of set theory on top of that makes CZF + RDC + ESP true. ■ 
Remark: Relative consistency for ESP was already known [14, §8], as it was for Subset Col- 
lection and RDC [15, §4]. This combined result is obtained directly without detours through 
Martin-L6f type theory, Kripkc-Platek set theory, or a classical theory of inductive definitions. 

18 



8 The classical world through the looking glass 

Meta-theorem 7.4 also allows V, Ai, and T to be interpreted via realisability into a classical 
system, such as IDi, which is classical first-order arithmetic plus axioms for any non-nested 
positive inductive definitions. In this section, Truth and Falsehood are defined separately: 

• V/, g € N. (Vn 6 N. fn\. -»• JY/n) V (T(fn) A gn\. A T{gn))) -> T(H(/, 3 )) 

• V/, 5 £ N. (Vn e N. /n| -4 J"(/n) V (T(/n) A (gnj -> (T(gn) V J"(gn))))) A (3n £ N. /n| A 
T(/n) A Qpil -4 Jfyn))) -► F(5(f,g)) 

• VxeN. (VneN. xniA (J(ioii) V (T(i«n) A V(x[n]))) -4- V(x) 

The corresponding induction principles are also assumed. These are positive mutually inductive 
definitions. They can be combined into a single positive non-nested inductive definition, and this 
is available in IDi. Then, M is an ordinary definition on top of this: 

M{x) <=> T(x)V.F(x) 

Lemma 8.1 Truth and Falsehood are mutually exclusive. 

Proof: In a manner similar to Lemma 7.1, define the coherent versions of Truth and Falsehood: 

T'(x) <=^ T(x) A -.J"(x) T'{x) <f=^ F{x) A -T{x) 

Given / and g, first suppose, as in the definition for 7~, that: 

VneN. fni -)• T'{fn) V {T'(fn) A gn\ A T'(gn)) 

Immediately it follows that T(S(/, g)), but it also follows that -i.F(E(/, g)), because 

-GneN. fn\, A T(fn) A (gnl ->■ /"(ffn)) 

So, T'(S(/, <?)). Conversely suppose, as in the definition for J 7 , that: 

(VneN. /ni ->• J"(/n) V (T'(fn) A (. 9 n| -4 (T'(.gn) V T'{gn))))) 
A(3nGN. MAT'(fn) A (M -» ^(fln))) -»• F(Z(f,g)) 

Immediately it follows that ,F(S(/, <?)), but it also follows that -i7"(S(/, <?)), because the second 
line implies that: 

-A/neN. /n| -)• J"(/n) V (T(/n) A gn\. A T(gn)) 

So, J-'(E>(f,g)). This means that 7"' and T' satisfy the same mutual closure conditions as T and 
J- ' . By mutual 7" and T induction, it follows that: 

VxeN. (T(x) -4 T'(x)) A (J-(x) -4 J"(x)) 

So finally, 

-n3xeN. T(x) A 7*(x) 

U 

Lemma 8.2 In this interpretation (2.1), (2.2), (5.1), and (5.2) are valid. 
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Proof: Given any numbers / and g, suppose for all n such that fn is defined, it is True or False. 
Suppose also that for all n such that fn and gn arc defined, and fn is True, then gn is True or 
False. This is where EM comes in: either for all n such that fn is defined and True, gn is also 
defined and True. In this case, S(/, g) is True. Or, there is some n such that fn is defined and 
True, but gn is undefined, or defined but not True. But if gn is defined, it is True or False. So, 
gn is undefined or False. In that case, S(/, g) is False. So, S(/, g) is Meaningful, and (5.2) holds. 

Suppose for all n such that fn is defined and True, gn is also defined and True. Suppose 
that S(/, g) is False. Then there is an n such that fn is defined and True, and gn is undefined 
or False. But gn is defined an True, so, there would be a gn which is both True and False. This 
is impossible by the previous lemma. So S(/, <?) cannot be False; if it is Meaningful, then it is 
True. Conversely if it is True, then of course it is Meaningful. Also, for all n such that fn is 
defined, either fn is False, or fn is True and gn is also defined and True. Given an n such that 
fn is defined and True, by the previous lemma it cannot also be False, so gn is defined and True. 
So (5.1) holds. 

Finally, to see that (2.1) holds, suppose for all n, xn is defined, and a; on is Meaningful, and 
if x o n is True, then x [n] is a Valid set. Since by the previous lemma x on cannot be True and 
False, this is equivalent to saying that xn is defined, and either x o n is False, or x o n is True 
and x [n] is Valid. That matches the above interpretation of V. And (2.2) is the corresponding 
induction principle. I 

Meta-theorem 8.3 CZF and IDi can interpret each other in a way that preserves II2 sen- 
tences of arithmetic. 

Proof: The above shows that there is an interpretation in IDi that makes the four assumptions 
true, and then the realisability interpretation of Meta-theorem 7.4 preserves almost-negative 
sentences of arithmetic, which includes II2 sentences. In that interpretation CZF (and more) 
is true. Conversely, IDi can be interpreted into IDi(O) 1 (which is HA plus a single non- 
nested inductive definition for the constructive second number class) in a way which preserves 
II2 sentences of arithmetic [5]. IDi(O) 1 can then be embedded into CZF using the same Class 
Inductive Definition Theorem used in the proof of Meta-theorem 7.5. I 

Remark: It was already well-known that CZF and IDi had the same proof-theoretic strength 
[15, §4]. This provides a simple interpretation without detours through type-theory or Kripkc- 
Platek set theory. It can not, however, extend to almost-negative formulas as it did in Meta- 
theorem 7.5. Markov's principle is almost-negative, and it is not provable in CZF, whereas it is 
a classical tautology therefore provable in IDi. Indeed this technique does not work to interpret 
the four assumptions directly into ID^. In a way, it comes down to P(l): in IDi it can be 
divided in two, and in CZF it is a class, but in ID^ it is not expressible at all, other than by 
indirect interpretation of IDi. 

9 The equational interpretation 

Definition 1.2 is a type of simultaneous inductive- recursive definition, as alluded to in section 1, 
although in fact it does not directly fit the normal inductive-recursive schema. It may be possible 
to come up with a general theory of inductive- multiple-recursive definitions. Instead this will be 
forced into the normal schema by also simultaneously defining pairs of sets. For clarity, the term 
"w-set" (and "w-set-pair" ) will be used in this context. 

Definition 9.1 

• is a w-set. Nothing is an intensional member of it. 
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• If /) 9i h are (computable) sequences such that for all n, (gn, hn) is a w-set-pair, and fn is 
a w-set whenever (gn,hn) is diagonal, then [f;g,h] is a w-set. x is an intensional member 
of it if and only if there is an n such that (gn, hn) is diagonal and fn = x. 

• If x and y are w-sets, and if (a, b) is a w-set-pair for every intensional member a of x and 
b ofy, then (x,y) is a w-set-pair. It is diagonal if and only if for every intensional member 
a of x there is an intensional b of y such that (a, b) is diagonal, and, for every intensional 
b of y there is an intensional member a of x such that (a, b) is diagonal. 

• All w-sets and w-set-pairs are inductively generated by these rules. 

[/; g, h] represents the set {fn \ n € N A gn ~ hn}, and is of course the empty set. This then 
has the form of a simultaneous inductive- recursive definition [7] . 

The introduction clause for w-set-pairs has two requirements: it requires that both elements 
are w-sets, but also that the intensional members of each of these are w-set-pairs. This is 
necessary to make the recursive definition of diagonality valid, since it must be able to refer to 
the diagonality of intensional members from each w-set, which requires these to be previously 
formed w-sct-pairs. Of course, after the definition is set up, it can be shown by double w-set- 
induction that the second clause is redundant. Therefore w-set-pairs collapse to pairs of w-sets, 
and diagonality is extensional equality. All this is just to confirm the sense that Definition 
1.2 is not only constructively and predicatively valid, but actually a normal inductive- recursive 
definition with a bit of plastic surgery. There is no longer any need to speak of Definition 9.1 or 
w-set-pairs. 

The principles of set theory could now be re-proven in terms of w-sets instead of v-sets. This 
will only be sketched here. Rather, in this section, an isomorphism between w-sets and v-sets 
is exhibited. It turns out the sentences built using the H operator are exactly what is required. 
But in the v-set context, no limiting assumption on meaning was made. To make this work, 
Definition 5.1 needs to be extended by a clause that "all Meaningful conditions are inductively 
built from H." Formally, this will be an induction principle corresponding to (5.2). Assume: 

(V/,. 9 GN. (VneN. M -»• 0(/n)) A (VnGN. M A gni A T(fn) -»• cj>{gn)) -»• 0(5(/, </)) 

)-»Vp€N. M(p)-»0(p) ' 

This is a schema in (f>. It is not hard to see that the interpretation of section 7 already validates 
this induction principle since A4 was constructed via the Class Inductive Definition theorem. A 
similar argument applies in section 8. 

Due to its limiting nature, (9.1) will inhibit a proof RE A such as the proof in the next 
section, and may actually allow it to be refuted. It can be considered unfaithful to the informal 
reading of "meaningful" in an essential way. This restriction, and therefore Definition 1.2, might 
be seen as undesirable, in much the same spirit that is often taken in classical set theory [10, 
§11.2]. On the other hand, if one is not interested in large set axioms (and most constructive 
mathematics can be formalised with much less than CZF + RDC + ESP) then it may be seen 
as a desirable and natural completion that leaves absolutely no ambiguity as to what a set is. 

Formal assumptions will now be stated. Introduce predicates W and S. W(x) should be 
read "x is a w-set" . S(e, x, y) should be read "e witnesses the extensional equality of x and y as 
w-sets" . Extensional equality of w-sets is defined as: 

x w y o 3eGN. S(e,x,y) 

It is denoted w, to distinguish it from ~, extensional equality of v-sets, and =, intensional 
equality of natural numbers. Some numerical coding for and [f;g, h] is assumed. Then, the 
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formal defining assumptions for W are: 

W(0) (9.2) 



V/, g, hen. (Vn £ N. /n| A gni A /m| A W(gn) A W(hn) A (gn w /in -> W(/n))) 

->W([/; ff ,/i]) 
(0) A (Vf,g,heE. (VneN. /r4 A .gn| A /mi A 0(.gn) A 0(/m) A (.gn w /m -)• <f>(fri))) 

-Kj>([f;g,h])) ->Vx£H.W(x) -Kfi(x) 



(9.3) 

(9.4) 



(9.4) is a schema in </>. These three correspond to the first three clauses of Definition 1.2, in 
order. The last clause will be expressed by axioms for S, like (4.1), but here this has to be done 
by cases. The first three cases are not too hard: 

VeeN. 5(e,0,0) (9.5) 

Ve,f,g,h€N. W([f;g,h}) -4 (S(e,0, [f;g,h]) o -3neN. gn » hn) (9.6) 

Ve,/, fl ,fteN. W([/; <?,/*]) -4 (5(e, [/;<?, /i],0) O -3n£N. 5 n « hn) (9.7) 

Finally the main case is straightforward, though verbose: 

VeJ,g,h,j,k,leE.W({f;g,h})/\W({j;k,l})^(S(e,lf; g ,hllJ;k,l})^ 
(VxeN. S(xR,g(x L ),h(x L )) -^ e L xi 

A S((e L x) RL ,k((e L x) L ),l((e L x) L )) 
A S((e L x) RR J(x L ),j((e L x) L ))) (9.8) 

A(Vx£N. S(x R} k(x L ),l(x L j) -^ e R x\, 

A <S((ei?x) flL , g((e i? x) L ), h((e R x) L )) 
A S((e R x) R R,j(x L ), f((e R x) L )))) 

The assumption ECTw is the same schema as ECTo, but where the class of almost- negative 
sentences includes the predicates W and S. The predicates W and S and their defining assump- 
tions will be used for this section only. 

Similar to section 2, IND and EL can be defined. The proofs of sections 2 and 3 go through 
basically as is. The operator II can be interpreted as follows: 

n(x m y, u « v) -<=/• ^x, {u | x « y}<) ~ ^y, {w | x ~ y}<) 

There is a difficulty when it comes to ECTw that does not occur with ECTy: the predicate 
IND is not almost-negative, because a w-set equality is not almost-negative. To get around 
this, an equation x w y is replaced by <S(e,x,y) with an extra parameter e. Every S(e,x,y) 
can be expressed as a different equation u « v, and this can be shown in the manner of Lemma 
9.5 below, using Set Induction rather than (9.1). This allows w-sets to be constructed using 
<S's as conditions. This in turn allows the proofs of section 4 to go through, with the necessary 
modifications. Finally, sections 5 and 6 are easy: the key was Kronecker Delta, Lemma 5.4, and 
this is now trivial. 

The above work-around is also the basic idea required to get an isomorphism, and this is 
formally exhibited here. An equation x ~ y is called "canonically witnessed" if there is a number 
/ such that x « y — > S(f, x, y). 

Lemma 9.2 Suppose that x and y are w-sets and that x « y is canonically witnessed. Suppose 
also that x ss y implies that u and v are w-sets and that u « v is canonically witnessed. Then 
there are w-sets s and t such that s ~ t is canonically witnessed, and such that s w t <-> (x ~ 
y — > u w v). 
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Proof: Define: 

s = {u | CeN Ax w y} 
t={v\ CeNAx « y} 

C is a dummy variable, s and t are valid w-sets under the stated assumptions. Clearly, s s=s 
to (i « j 4» k »). All the relevant sub-equations are canonically witnessed, so a canonical 
witness for s ps i can be constructed. ■ 

Lemma 9.3 Given a sequence of canonically witnessed w-set equations, there is a canonically 
witnessed w-set equation which expresses that every equation in the sequence is true. 

Proof: Given sequences of w-sets x and y such that xn « yn is canonically witnessed for all n, 
define: 

u = { fyn, mi) | n E N A w 0} 
v = { fyn, yni) \ n e N A « 0} 

Now, by the properties of set-theoretic ordered pair and finite Von Neumann ordinals, the equa- 
tion {m, in<) « 6n', yn'^ is true if and only if n = n' and xn w yn' . It follows that u « i) if and 
only if xn w yn for all n. Moreover, an equation between any two finite Von Neumann ordinals 
is canonically witnessed; this can easily be shown by induction. Also by hypothesis xn « yn is 
canonically witnessed. Therefore a canonical witness for u ~ i> can be constructed. ■ 

Lemma 9.4 Given two numbers e andi, suppose that ifei is defined, it is a canonically witnessed 
w-set equation, that is, (ei)nL and (ei)nn are w-sets and (ei)r, is a canonical witness for (ei)nL ~ 
(ei)ijij. Then there is a canonically witnessed w-set equation which expresses that ei is defined 
and true, that is, it expresses ei\, /\ {ei)nL ~ (ei)ijij. 

Proof: Define: 

x = 1 

y = {0 | weN A T'(e, », u, U{u) RL , 0) w T'(e, *, u, U(u) flfl , 1} 

^/z • ,x j a 7 ifT(e,i,u) 

T (e, i,u,a, b) = < 

I 6, otherwise 

The equation in the definition of y is true if and only if T(e, i, u) and TJ(u)rl ~ V(u)rr. So, the 
equation x w y is true if and only if e«^ A {eijnr, ~ {ei)RR, as required. Now, to get a canonical 
witness /, notice that all the relevant sub-equations are canonically witnessed. / just has to 
produce a u such that T(e,i,w). It can do an unbounded search. If in fact x « y, then eiL, so 
the search will terminate; x « y — > 5(/, x, y), as required. ■ 

Lemma 9.5 Any Meaningful condition can be expressed by a canonically witnessed w-set equa- 
tion. 

Proof: Proceed by induction using (9.1). Given / and g, take for inductive hypothesis that 
when fn is defined it can be expressed by a canonically witnessed equation, and that when fn 
and gn are defined and fn is True, gn can be expressed by a canonically witnessed equation. 

Take any n. By Lemma 9.4, there is a canonically witnessed equation that expresses that fn 
is defined and True; and also, if fn is defined and True, there is a canonically witnessed equation 
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that expresses that gn is defined and True. So, by Lemma 9.2, there is a canonically witnessed 
equation that expresses that if fn is defined and True, then gn is defined and True. 

So, by Lemma 9.3, there is a canonically witnessed equation expressing E(f,g). And finally, 
by (9.1), every Meaningful condition can be expressed by a canonically witnessed equation. ■ 

Lemma 9.6 If g and h are sequences of v-sets, and if f is a sequence such that fn is a v-set if 
gn ~ hn, then {fn | nGN A gn ~ hn} is a v-set. 

Proof: It follows from Lemmas 5.3 and 4.6 that 

{fn | neNA.gn ~ hn} = An.(f(nL),H(n R ,g(n L ),h(nL))) 

is the required v-set. I 

Meta-theorem 9.7 Definition 1.2 is isomorphic to Definitions 1.1 and 5.1 plus the assumption 
that all Meaningful conditions are inductively built using S. Specifically, HA + ECTy plus the 
assumptions (2.1), (2.2), (5.1), (5.2), and (9.1) can interpret H A + ECTw plus the assumptions 
(9.2)-(9.8), and vice versa, in a way that preserves all sentences of first-order set theory. 

Proof: Given a w-set x, an equivalent v-set Wi can be constructed recursively using Empty 
Set and Lemma 9.6. Then interpret: 

W(x) ^> VfWi) 
S(e,x,y) <=» K(e,Wx,Wy) 

TL can in turn be interpreted in terms of T by Lemma 5.3. This will satisfy the assumptions 
for w-sets. Also since V and T are almost-negative, so are W and S, therefore ECTw is also 
satisfied. 

The other direction works as follows: given a condition p, Lemma 9.5 gives a triple Mp = 
(e, (x, y}}. Given a v-set x, an equivalent w-set Vx can be constructed by recursively replacing 
every condition p which appears with an equation (Mp)jji « (M.p) RR . Then interpret: 

M( P ) <=> W((Mp) RL )AW((M P ) RR ) 
T( P ) ^ S((Mp) L ,(Mp) RL ,(M P ) RR ) 
V(x) <=> W(Vx) 

Since (M.p) R L ~ (M.p) RR is canonically witnessed by (Mp)i, the equation is interchangeable 
with T(p), but T remains almost-negative. So, this satisfies the assumptions for v-sets, and V, 
M. and T are almost-negative because W and S are, so ECTy is also satisfied. 

It is not hard to see that the operations V and W are also inverses up to extensional equality, 
so first-order set theory is preserved. ■ 

The formal machinery of w-sets might seem inelegant compared to that of v-sets. It might 
then be imagined that if an actual construction were attempted in terms of w-sets equations, the 
result would be even messier. This section closes with a brief example of a direct construction. 

Assume bijective encodings Q and Q + of the rational numbers and the positive rational 
numbers, respectively. Define: 

, [l if T(e, z, u) A Qz < QU(u) - Q + z 
J(e,z,u,x) = < 

otherwise 



K(e, z, z',u, u') 



1 if T(e,z,u) AT(e, z',u') A |QU(u) - QU(u')| < max(Q+z, Q+z') 
otherwise 
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The rational inequations involved are of course computable, so J and K are computable. Now 
define: 

X = Ae.{Qx | x, z,ueN A 1 « J(e,z,u,x)} 

Y = Ae.{(z,z ) | z, z ,u,u €N Al?z K(e,z,z ,u,u)} 

R = {le | eeNAuwVe} 

Viewing e as a computable partial function from Q + to Q, it follows that 

lewfieQI 3zeQ + . ez\.Ax < ez - z} 
The equation uj w Ve expresses that 

(VzeQ+. ez|) A (Vz,z'eQ+. |ez - ez'\ < max(z,z')) 

When this equation holds, it follows that e is a Cauchy sequence, and that Xe is the corresponding 
located lower cut of rationals. It can be shown in CZF that to any located lower cut there is 
such a Cauchy sequence and vice versa [1, §3.6]. This does rely on Countable Choice, which is of 
course valid here. So, although intensionally K was constructed in terms of Cauchy sequences, 
extensionally it is the w-set of all located Dedekind reals. 

10 Regular sets 

The interpretation will transcend CZF if Meaning is extended to include conditions that cannot 
be expressed with S alone. For instance, a basic reflection principle should be sufficient to prove 
the consistency of CZF. But there is a more natural assumption from which REA will follow. 

The concept of a bar plays a significant role in Brouwer's school of intuitionism. A bar is a 
subset of finite sequences of natural numbers, such that every infinite sequence has at least one 
of its finite prefixes belonging to it. Here a slight liberty is taken with the definition: a bar will 
be a such that no infinite sequence has all of its prefixes belonging to it. Also, no form of bar 
induction will be assumed. Instead the bars that are considered are those that are inductively 
generated in the first place. 

Assume some elementary bijection between natural numbers and finite sequences of natural 
numbers, which will also be written with angle brackets. No confusion should result. The * 
operator will denote sequence concatenation. Also \x\ will denote the length of the sequence x. 

Definition 10.1 

• If f{) being True would imply that Ax.f((n) * x) are inductively generated bars for every 
n, then, f is an inductively generated bar. 

• All inductively generated bars are inductively generated by this rule. 

It follows from this definition that if /() = _L, then / is an inductively generated bar; and, if 
g is a sequence of inductively generated bars, then sup g is an inductively generated bar, where 
(sup 5)() = T and (sup g)((n) *x) = gnx. But the definition allows for conditions other than T 
and _L. 

Definition 10.2 fi(/) is a condition which expresses that f is an inductively generated bar. It 
is Meaningful if fn is defined and Meaningful for all n. 
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Formal assumptions on Ai and T are made following Definitions 10.1 and 10.2. In section 5 
the odd numbers were used to denote applications of S, and here the numerical convention that 
£!(/) = 4 • / + 2 is adopted, leaving unspecified the Meaning of conditions whose numbers are 
divisible by four. Assume: 

V/eN. (VneN. fnlAM(fn)) -+ M(Sl(f)) (10.1) 

V/eN. M(n(f)) A (T(/()) -)• VneN. T(ft(/ (n) ))) -»• T(0(/)) (10.2) 

(V/eN. A4(n(/)) A (T(/()) -»• VneN. 0(/W)) ^ 0(/)) -4 (V/eN. T(0(/)) -4 </>(/)) (10.3) 

(10.3) is a schema in 0. The expression Ax.f((n) * x) has been abbreviated / ( -™- ) . Truth for Q is 
given by a standard accessibility definition which is immediately constructively valid. 

Lemma 10.3 Suppose p is Meaningful, x is a sequence, and p being True would imply that x 
is an inductively generated bar. Then, II' (p, x) is an inductively generated bar, where U'(p,x) = 
Am.Tl(p, xm). 

Proof: p being True would imply that x is an inductively generated bar. So it would also imply 
that a; is a sequence of Meaningful conditions. That is, it would imply that xm is Meaningful 
for all to, so, by Definition 3.1, Tl(p, xm) is (unconditionally) Meaningful for all m. Therefore 
n'(p, x) is a sequence of Meaningful conditions, and it is Meaningful to ask if it is an inductively 
generated bar. 

p being True would also imply that IT(p, xm) is True if and only if xm is True. So, p being 
True would imply that Tl'(p,x) is equivalent to x, and so is also an inductively generated bar. 

Now suppose W(p,x)() is True. It would follow that p is True, so H'(p,x) would be an 
inductively generated bar, and so H'(p,x)^ would be an inductively generated bar for all n. 
Since H'(p, x)() being True would imply that II' (p, x)^ is an inductively generated bar for all 
n, it follows that IT'(p,x) is (unconditionally) an inductively generated bar. ■ 

Lemma 10.4 Suppose t is a sequence of Meaningful conditions. Then there are B{t,x) such 
that: 

• B(t,x) is Meaningful for all x. 

• B(t, x) is True if B(t, x [n]) is True for all n such that xn is defined and such that t{xou) 
is True. 

• All the x's for which B(t,x) is True are inductively generated by this rule. 

Proof: Define the conditions B(t,x) as follows: 

B(t,x) = Q(Az.A(t,x,z)) 
A(t,x,z) = T, if \z\ < 2 
A(t, x, (n, u) * z) = TL(t(U(u)r), A(t, U(u)l, z)), ii T(x,n,u), else ± 

The conditions A(t, x, z) are either equal to T or else is formed from II and to for some values of 
n. Since r is a sequence of Meaningful conditions, it follows that A(t, x, z) is always Meaningful. 
So by Definition 10.2, B(t,x) is Meaningful. 

Now, A(t, x, z) — T if \z\ < 2, so by the definition, Az.A(t, x, z) is an inductively generated 
bar if and only if Az.A{t, x, (n,u) * z) is an inductively generated bar for all n and u. Also, 
unless T(x,n,u), A(t,x, (n,u) * z) = _L, so it is trivially an inductively generated bar, by the 
definition. If T(x,n,u) then A(r, x, (n, u) * z) — IL(t(TJ(u)r), A(t, XJ(u)l, z)). By the previous 
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lemma, Az.II(t(V(u)ji), A(t, U(u)l, z)) is an inductively generated bar if and only if t(U(u)r) 
being True would imply that Az.A(t, \J(u)l, z) is an inductively generated bar. 

It follows, then, Az.A(t, x, z) is an inductively generated bar if Az.A(t, x [n] , z) is an induc- 
tively generated bar for all n such that xn is defined and such that t{x o n) is True; and, this 
gives all the x's for which Az.A{t, x, z) is an inductively generated bar. Finally, B(t,x) is True 
if and only if Az.A(t, x, z) is an inductively generated bar, and this matches the last two clauses 
of the lemma. ■ 

Lemma 10.5 Suppose r is a sequence of Meaningful conditions. Then there are conditions 
W(t, x) such that: 

• W(t,x) is Meaningful for all x. 

• W(t, x) is True if xn is defined for all n, and if W(t,x [n]) is True for all n such that 
t(x on) is True. 

• All the x's for which W(t, x) is True are inductively generated by this rule. 
Proof: Define the conditions W(t,x) as follows: 

W(t,x)=IL(B(t,x),L(t,x)) 

L(t, x) = Tl(TOT{x), J{t, x)) 
TOT(x) = E(An.T,An.K(T,xn)) 
K(a, b) = a 
J(t, x) = S(An.r(a; on), An.L(r, x [n])) 

Here, B is given by the previous lemma. TOT(x) asserts that xn is always defined. J(t, x) 
asserts that L(t, x [n]) is True for all n such that t(ioii) is True. Therefore, L(t, x) asserts that 
xn is defined for all n, and that L(t, x [n]) is True for all n such that t(x o n) is True. Provided 
that it is Meaningful, it has the correct Truth conditions. 

TOT(x) is always Meaningful. If TOT(x) is True and L(t,x [n]) is Meaningful for all n such 
that t(x o n is True, then J(t,x) is Meaningful. So, if L(r,x[n]) is Meaningful for all n such 
that t(x on) is defined and True, then L(r,x) is Meaningful. 

The previous lemma establishes an induction principle which matches a recursive condition 
for L(t,x) to be Meaningful. So, if B(t,x) is True, then L(t,x) is Meaningful. It follows that 
W(t,x) is always Meaningful, as claimed. ■ 

Lemma 10.6 Suppose r is a sequence of Meaningful conditions, and that there is a number F 
such that tF is not True. Then there is a v-set V(r) containing all and only the v-sets that can 
be "built from" t . That is: 

• If all the conditions of y are in r (that is, for all n there is an m such that rm is True if 
and only if yon is True), and all the elements of y are in V(t), then y is in V(r). 

• All the elements of V(r) are inductively generated by this rule. 

Proof: Define the v-sets Y(t,x) and V(t) as follows: 

Y(t, x) = An.{Y(r, x [n]),T{x o n)) 
V{t) =Ax.(Y(t,x),W(t,x)) 
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Here W is given by the previous lemma. Take for an inductive hypothesis that xn is defined for 
all n, and that Y(t,x [n]) is a v-set for all n such that t(xoti) is True. Y(t,x) would be v-set. 
So, from the induction principle established by the previous lemma, it follows that Y(t, x) is a 
v-set for all x such that W(t,x) is True. This establishes that V(r) is a v-set. 

Suppose y is a v-set and can be built from r. Then for all n, there is an m such that y o n is 
True if and only if rm is True. So by ECTy, there is an e such that 

Vn e N. en\. A (T(y »n)o T{r(en))) 

Also since y can be built from r, every element of y can be built from r. Take, for a set-inductive 
hypothesis, that for every element b of y there is an a such that W{t, a) is True and b ~ V(r, a). 
So again by ECTy, there is an / such that 

VneIND(y). fn], A T{W{t, fn)) A y [n] ~ F(r, /n) 

So, define: 

3 = An.{U(n R ) L ,T (x 1 n L ,n R ,lJ(n R ) R )) 
Tq(x, n, u,p) = p if T(cc, n, u) else i* 1 
.t = An.(fn, en) 

en is always defined. If r(en) is True then so is y o n, so fn is defined and W(t, fn) is True. 
The proof of Lemma 3.4 applies with minor changes to show that zn is defined for all n, and 
that, if t(z o n) is True for some n, then z [n] = fn' for some n' G IND(y). By the properties 
of /, W(t, /n') is True for all n' € IND(y). So, by the previous lemma, W(t, z) is True, and as 
established above, this means that Y(t, z) is a v-set. 

Conversely, for all n' G IND(y) there is an n such that t(z o n) is True and z [n] = fn', 
and from the properties of / it follows that y[n'] ~ Y(t, z[n]). So, Y(t,z) ~ y. Finally, by 
Set Induction, it follows that for any v-set y which can be built from r, there is a z such that 
W(t, z) is True and Y(r, z) ~ y, which means that V(r) contains y. V(r) contains only such 
v-sets, because when W(r, x) is True, K(r, x) is well-founded and directly built from r. ■ 

Lemma 10.7 Suppose, as in the previous lemma, that r is a sequence of Meaningful conditions, 
and that there is a number F such that tF is not True. Then V(t), the v-set of all v-sets which 
can be built from t, is in fact "regular": inhabited, transitive, and a model of Strong Collection. 
That is, given an element x ofV(r) and any v-set R which is a binary relation such that to every 
element of x there is an element ofV(r) related to it by R, then, there is an element y ofV(r) 
which contains only v-sets related to elements of x, and which contains, for each element of x, 
at least one v-set related to it. 

Proof: F is a condition in r which is not True, so the empty v-set, at least, can be built from 
it, and therefore V(r) is inhabited. Transitivity follows from the fact that if a v-set can be 
built from r, then by definition so can all its elements. The previous lemma shows that V(r), 
An.T and r mirror the assumptions (2.1) and (2.2) on V, M, and T, respectively. The proof 
of Theorem 4.1 (including Lemma 3.4) only required these assumptions plus the fact that _L is 
Meaningful and not True. R can be used as the relation tjj, even though R may be external to 
V(t), because tp was allowed to be arbitrary. So, Strong Collection applies inside V(t). ■ 

Lemma 10.8 For every v-set, there is a sequence of Meaningful conditions from which the v-set 
can be built. 
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Proof: Define h(x) as follows: 



h(x) — Am.h (x, m) 
h!(x,m) = T if \m\ < 2 
h'(x,(n,u) *m) =H(U(u)R,h'(\J(u)L, , m)), i£T(x,n,u), else ± 



Now, h'(x,(n,u)*m) =H(V(u) R ,h'(U(u) L ,m)) i(T(x, n,u). h'(XJ(u) L ,{}) = T, so h'(x, (n,u)) 
is True if and only if TJ(u)r is True and T(x,n,u). So h(x) contains the conditions x on for 
all n such that xn is defined. If ion is True, then, II(x o n, h'(x [n] , to)) is True if and only if 
h'(x [n] , to) is True. So, h{x) also contains all the conditions in h{x [n]) for all n such that xn is 
defined and ion is True. 

Given a v-set x, take for a set-inductive hypothesis that for every element y of x, h(y) is a 
sequence of Meaningful conditions from which y can be built. It follows that h(x) is a sequence 
of Meaningful conditions. h(x) contains all the conditions in h(x [n]) for all n 6 IND(x), so 
every element of x can be built from h(x). h(x) also contains the conditions x on. So, x can be 
built from h{x). 

By Set Induction, then, any v-set x can be built from the sequence of Meaningful conditions 

h(x). m 

Theorem 10.9 (Regular Extension) Every v-set is contained in a regular v-set. 

Proof: Given any v-set x, there is a sequence of Meaningful conditions from which x can be 
built. This can be trivially extended to include _L. There is a regular v-set containing all and 
only the v-sets which can be built from this sequence. By construction of this sequence, x itself 
is such a v-set, so it is contained in this regular v-set. ■ 

11 CZF + RE A through the looking glass 

The interpretation of section 7 can be extended to include the assumptions (10.1), (10.2), and 
(10.3). First an inductive class definition is given to capture the Truth conditions of 0. Define 
the classes: 

T(M) = {<?B, f$ | / £ W(M) AB~ V(f, M)} 
V(f,M) ={/W | ne W A^€¥} 
W(M) ={/ eco\ynecu. fnlABheY. $fn,h$ e M ) 

Form the least T(M)-closed class, B(M)°° . The role of REA will be to show that B(M)°° is in 
fact a set when M is. Then define the class: 

$' = $U{()M,ac) | 3feW(M). a~£ft(/),{0| f e B(M)°°}$} 

$ is the same operator as in section 7, but now M°° is the least $'-closed class. V°° is defined 
the same way, and V, A4, and T are interpreted the same way. 

Lemma 11.1 Suppose that M is a subset of u x P(l). Then: 

• If f £ W(M), and if (>/(), 1<) £ M implies that /W G B(M)°° for all n E u>, then, 
f e B(M)°°. 
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• All the elements of B(M)°° are inductively generated by this rule. 

Proof: First, note that if / G W(M), then /(") G W(M) for all n. Now, suppose 

t>f(),l§ 6 M -> Vnew. /W G B(M) 00 

It follows that V(f,M) C B(M)°°, and so / G S^, since B(M)°° is T(M)-closed. Conversely, 
if there is a class JB' such that 

V/€W(M). ((>/(), It) G M -4 VnGw. /W G B') -4 / G S' 

Then, B' is T(M)-closed, and B(M)°° is the least such class so B(M)°° C B', giving the required 
induction principle. ■ 

Lemma 11.2 If M is a subset of uj x P(l), then B(M)°° is a set. 

Proof: First, V(f,M) is indeed a set, being given by a bounded formula. W(M) is also a set, 
because the quantification over V can be replaced by quantification over ran(M), the range of 
M; since M is a set, ran(M) is a set by Replacement and the properties of the set-theoretic 
ordered pair. 

The operator T(M) is "bounded": for a given B, the class of all conclusions / is given by a 
set, namely {/ G W(M) \ B ~ V(f,M)}; and, the class of all possible premise sets B is given 
by a set, namely {V(f,M) | / G W(M)}. Using Regular Extension, it can be shown that if an 
operator is bounded, the class it inductively defines is actually a set [1, §5]. ■ 



Proof: As with Lemma 7.1, define M' as the coherent subclass of M°° . Now suppose there is a 
set M C M' and a set a such that (>M, a<) G $'. Lemma 7.1 takes care of the S case to show that 
a G M'. So consider the il case: there is an / G W(M) and an h G P(l) such that a ~ ^fl(f), h$ 
and/j-jO | /G J B(M)°°}. 

By definition of W(M), for all n G w, /n is defined and there is a j such that §fn,j$ G M. 
M C M', so this j is unique. Now a G M°° since M C M°° and ^>M,ac) G $'. Suppose there 
is another §Q(f),h'$ G M°°. Then there exists a set AT C M°° such that / G W^N), and 
/i' — {Q | / G ^(A^) 00 }. By definition of W, for all n, /n is defined and there is a j' G P(l) such 
that t>fn,j'§ G N. But these are the same fn's as for W(M), and the corresponding j's are 
unique, so f ~ j. Therefore / G B(M)°° o / G B(N)°°, so /i' ~ /i. 

So again, /i being unique, a G M', and the class M' is ^'-closed. But M°° is the least such 
class, so all of M°° is coherent. ■ 

Lemma 11.4 In M°°, (10.1), (10.2), and (10.3) are true. 

Proof: Suppose / is a sequence of Meaningful conditions. Then / G W(M°°). By the previous 
lemma all the corresponding fyfn, h§ G M°° are unique, so by Replacement, the following is a 
set: 

Mv = {§fn,j§ GM°° \neu} 

B(M V )°° is a set by Lemma 11.2, and M°° is ^-closed so £f2(/),{0 | / G ^(My) 00 }^ G M°°, 
so f2(/) is Meaningful, as required by (10.1). Furthermore, / G B(Mv)°° expresses the correct 
Truth conditions for (10.2) and (10.3), as shown by Lemma 11.1. ■ 

Meta-theorem 11.5 Assumptions (2.1), (2.2), (5.1), (5.2), (10.1), (10.2), and (10.3), along 
with ECTy, are true in a realisability interpretation, provided that the seven assumptions hold 
(without ECT-yJ in the underlying meta-theory. 
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Proof: It is the same interpretation as in Meta-theorem 7.4, and the previous proof disposes 
of ECTv and the first four assumptions. Moreover, (10.1) and (10.2) are trivially disposed of, 
being almost-negative, in the same way as (2.1), (5.1), and (5.2). What remains is (10.3), which 
in some instances has a non-trivial witness, and it is disposed of in a way similar to (2.2). Define: 

p = Ae.Af.(e'f)(An.(pe)(f^)) 

Here e' is a simple syntactic transformation introduced below for clarity of presentation. It will 
follow that (pe)f iterates e by bar recursion along /, and as a result, p witnesses (10.3) for any 
</>, provided (10.3) holds in the meta-theory. This is argued in a way which is similar to Lemma 
7.4. 

Suppose e witnesses the antecedent of (10.3): 

e Ih V/eN. M(n(f)) A (T(/(» ->• VnGN. #/(">)) -»• 0(/) 

which means that 

V/,oGN. (M(tl(f)) A (T(/(» -4 VneN. an| A (an Ih 4>(f (n) ))) 
-+(e'f)alA(e'f)a\\-<f>(f) 

The transformation e n> e' causes e to ignore the trivial witnesses for M. and T . Suppose, by 
way of inductive hypothesis, that / is a sequence of Meaningful conditions, and that: 

T(/<» -> VnGN. (pe)(/("))| A (pe) (/<">) Ih 0(/W) 

By (10.1), M(Q(f)), so, substituting An. (pe) (/*■")) for a in the assumption on e, it follows that: 

(e'J) (An. (pe) (/<"))! A (e' f)(An.(pe)(f^) Ih 0(/) 

By the definition of p: 

(pe)fi A (pe)f\\- 0(/) 

If the induction principle of (10.3) holds in the underlying meta-theory, it follows that: 

V/€N. T(0(/)) -4 (pe)/| A (pe)f Ih 0(/) 

This is the consequent of (10.3). So, p witnesses (10.3), provided the same schema holds in the 
underlying meta-theory. ■ 

Meta-theorem 11.6 CZF + REA interprets CZF + REA + RDC + ESP in a way that pre- 
serves almost-negative sentences of arithmetic. 

Proof: Lemmas 7.2 and 7.3 work here as well, and Lemma 11.4 uses only arguments available in 
CZF + REA. Therefore the seven assumptions can be interpreted into CZF + REA. The re- 
alisability interpretation of Meta-theorem 11.5 preserves almost-negative formulas of arithmetic, 
and in this interpretation CZF + REA + RDC + ESP is true. ■ 

Remark: Again relative consistency for ESP [14, §8], and for RDC [15, §5] was already known, 
though this combined result is obtained without detours. Here there is no point in considering 
CZF" +REA: REA implies Subset Collection [1, §10]. 
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12 Extended Church's Thesis and Omniscience 

The assumptions in this paper are unproblcmatic both classically and constructively, with the 
exception of ECT. One of the consequences of even weak constructive forms of Church's Thesis 

is: 

-.Ve.ieN. ((BueN. T(e,i,u)) V (^BweN. T(e,i,u))) 

Almost all mathematicians think classically, and form that perspective this assertion, and there- 
fore ECT, can only be false. But it is provably consistent, and can be understood indirectly in 
terms of a realisability interpretation in a classical meta-theory, as in section 8. When it is set 
up this way, not only is ECT valid, but so is Markov's Principle. No form of this principle was 
needed in this article, though, so it isn't actually necessary that the meta-theory be classical. 
This is why things still work when the realisability interpretations are set up in constructive 
meta-theories, as in sections 7 and 11. 

But it isn't actually necessary to have a meta-theory at all. It is possible to understand ECT 
literally instead. This does then force literal acceptance of the indeterminacy of the halting 
problem. Of course this raises some philosophical questions, but at the same time, it disposes 
of others. A well-known one is the question of non-standard models of first-order arithmetic. 
It is disposed of by adapting Tcnncnbaum's theorem to ECT, from which it follows that there 
simply aren't any non-standard models [13, §4.1]. A less well-known one, which perhaps this 
article will help make better known, is the justification of set theory. The principles of set 
theory are by no means self-evident, even from a classical point of view. They are taken as 
axioms. They can be argued for in various ways, such as in terms of their consequences [10, §1]. 
The fact that they are in turn provable consequences of ECT plus a simple, precise definition 
(and perhaps one with no non-standard models) disposes of this issue. Furthermore since the 
definition is entirely numerical, it also disposes of the ontology of mathematical entities other 
than the natural numbers. 

Thus the principles of set theory refer to clearly defined objects, they mean what they say, 
and they are not axioms, but theorems. Taking ECT at face value allows set theory to be taken 
at face value. This point of view has some claim to the term realism. Now, it may be objected 
that if the natural numbers really exist, the halting problem simply must be determinate. A 
good answer to this should involve a proper account of realism in mathematics, and is beyond 
the scope of this author. Instead, it will be shown that even if dctcrminacy of the halting problem 
is conceded, not much is lost. 

Richman introduced a weaker assumption that has many of the consequences of Church's 
Thesis [16]. In summary, often a constructive proof involving Church's Thesis is really only 
relying on the fact that the computable partial sequences can be computably enumerated. The 
adjective "computable" is actually inessential. It would work just as well with the assumption 
that the X-able partial sequences can be X-ably enumerated. This is indeed exactly what is 
being used here to get a numerical interpretation. 

Another way of looking at this is that absolute computability can be replaced with com- 
putability relative to some unspecified oracle O. Consider the sets of the form {/n | nGNAgn ~ 
hn}, or {fn | ngN A (j>n is True)}, where the sequences are now only required to be computable 
relative to O. The partial functions which are computable relative to O can be enumerated com- 
putably relative to O, so this can still be formalised entirely numerically. Replace the absolute 
predicate T with a relativised predicate T° , of which it is only assumed that it is decidablc, 
univocal in its output, and complete under, but not necessarily limited to, the usual computable 
operations. Define ECTq 1 to be the same schema as ECTo: 

(Vn E N. 4>(n) ->■ 3m e N. %j){n, m)) -)■ 3e e N. Vn e N. <j>{ri) -4 en\. A ip(n, en) 
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But now redefine the notations en and en\ to refer to the predicate T° rather than just T. 
Similarly ECT^ can be defined, and the reader can check that all the proofs of sections 2-6 
go through otherwise unchanged. In the relativised interpretation, some extra sentences might 
be decidable on account of O, but CZF + RDC + ESP is still validated. For instance if it is 
additionally assumed that O is able to (but again, not necessarily limited to being able to) solve 
the halting problem, then the result is a consistent extension of CZF + RDC + ESP with a 
so-called Omniscience principle: 

VxeN. 4>(x) v-k/>(x) 

where cj> is any Si sentence of arithmetic, from which of course it follows that the halting problem 
is determinate. 

To see that this really is a consistent theory, interpret it back into plain CZF. Now, the direct 
embedding of section 7 will longer work, since T° is not actually decidable for any non-trivial 
O. On the other hand, the embedding into IDi of section 8 was already classical, and stands 
with just the change in notation mentioned for this O. And if it is further objected that if the 
natural numbers really exist, then £2 sentences must also be determinate, then this embedding 
can be trivially extended to accommodate: 

Meta-theorem 12.1 For any fixed n, CZF can interpret CZF + RDC + ESP 7 plus Omni- 
science for all E n sentences of arithmetic, in a way that preserves the 1I2 sentences of arithmetic. 

Proof: For n fixed, the truth predicate for £„ sentences can be defined in classical first-order 
arithmetic. So an appropriate T G can be non-inductively defined. Therefore 7~, M. and V can 
be defined with a non-nested inductive definitions in IDi, allowing CZF + RDC + ESP plus 
the required Omniscience principle to be interpreted, as in Meta-theorem 8.3; and again, CZF 
can indirectly interpret IDi. ■ 

Corollary 12.2 CZF proves the same II2 sentences of arithmetic as CZF + RDC + ESP 

plus Omniscience for all sentences of first-order arithmetic. 

Proof: Omniscience for prenex sentences is sufficient to prove the prenex normal form theorem 
for all sentences of first-order arithmetic. The conclusion now follows by (constructive) compact- 
ness: any given proof of a II2 sentence could only appeal to prenex-Omniscience a finite number 
of times, so, that proof would work with E„-Omniscience for some finite n. ■ 

It would be nicer to have a direct interpretation for the corollary, but this is not attempted 
here. There is further to go anyway. Hyperarithmetic sentences can be considered. At some point 
in the hyperarithmetic hierarchy, the required Omniscience principle necessarily will transcend 
CZF. Still, in general, if there is a system with classical logic which can define the truth 
predicate for a certain class of sentences, and then inductively define 7~, M. and V on top of it, 
then, CZF + RDC + ESP plus Omniscience for that class of sentences could still be interpreted 
in that classical system. Then it becomes a matter of interpreting that classical system in a 
constructive system. This would in particular apply to the hyperarithmetic hierarchy up to a. 
Perhaps even a modest critical point can be expected after which the assumption that a is well- 
founded would be sufficient to prove the consistency of CZF + RDC + ESP plus Omniscience 
for the hyperarithmetic hierarchy up to a. 

A proper analysis of this is not attempted here either. The relativisation can be applied even 
beyond this. For example, it is beyond the ability of anything in the hyperarithmetic hierarchy to 
decide whether computable relations are well-founded (Kleene's O). Yet there is still a consistent 
extension of CZF + RDC + ESP for the corresponding Omniscience principle: 
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Meta-theorem 12.3 ID2(0)' (which is HA plus an inductive definition for the construc- 
tive third number class) can interpret CZF + RDC + ESP, plus Omniscience for the well- 
foundedness of computable relations, in a way that preserves II2 sentences of arithmetic. 

Proof: The wcll-foundcdness predicate for computable relations can be denned with a classical 
non-nested inductive definition. Therefore with a second level of inductive definition, T, M. 
and V can be defined over an appropriate T , as in Meta-theorem 8.3. This form of inductive 
definition is possible in ID2, which in turn can be interpreted in H^O) 1 [5]. ■ 

It is clear that this doesn't represent the limit of relativisation. It is straightforward to 
accommodate higher constructive number classes, for instance. 

Now, no matter what, given T° , the halting problem relativised to O can always be expressed, 
and no oracle can ever solve its own relativised halting problem. So, it always be true that: 

-.Ve, i e N. (3u e N. T° (e, i, u)) V (->3u e N. T°(e, i, u)) 

In other words, some relativised halting problem is still indeterminate. But only assumptions on 
what O can decide ever need to be made, never assumptions on what O is limited to. Therefore 
if something about the natural numbers ought to be determinate, it can be assumed so, and it 
seems that this relativised indeterminacy is of no consequence. 

At least, there is no consequence as long as only the natural numbers are considered. The 
story is different for the real numbers. There is a consequence of the above, which therefore 
cannot be avoided by any relativisation: 

^Va;e N N. (3nGN. x(n) = 0) V (^BneN. x(n) = 0) 

This is the negation of the so-called Limited Principle of Omniscience (LPO). Even weaker 
Omniscience principles of this kind are considered and refuted by Richman [17] using weaker 
forms of Church's thesis, and the refutations may still work with the relativised form. The 
difference in kind here is that LPO and its weakenings no longer refer to a well-defined class 
of sentences involving natural numbers, rather, they demand a certain type of determinacy for 
arbitrary sequences of numbers. The consequences of LPO and its kind are felt in analysis rather 
than number theory [9]. 

Therefore I believe that if there is a philosophical issue here, it has to come from an ontology 
of real numbers, which might demand LPO, or of sets in general, which might require P(l) ~ 2 
or the existence of classically uncountable (that is, non-subcountable) sets. There should be no 
objection solely on the basis of an ontology of the natural numbers, which the good lord created. 
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